Malware

Generik.LMQOKBN malicious file

Malware Removal

The Generik.LMQOKBN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generik.LMQOKBN virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Expresses interest in specific running processes
  • The executable is likely packed with VMProtect
  • Uses Windows utilities for basic functionality
  • Attempts to delete volume shadow copies
  • Exhibits behavior characteristic of Cerber ransomware
  • Anomalous binary characteristics

How to determine Generik.LMQOKBN?


File Info:

crc32: 72B60649
md5: ad0ffe341969b8e78d2a5702ac0c3094
name: AD0FFE341969B8E78D2A5702AC0C3094.mlw
sha1: 5a225461198eb0f18f158ac1068cf92ddce0d63d
sha256: 903d02e0caac68f173075699e24eed03f3b668694b8a972dbaba9049e28a5769
sha512: c99f73045149a8d5fb9a69e8f349441f0618a7686fe87ebf36c25f175b087b8dafa6c4d5d690d7d4154ec4d4970afcefb7e87849f9476bb7f194223546f66416
ssdeep: 3072:IQjvZmFVQYo2JM2JZitWHQEtdPAmIrv9gDlVkqRtGwXlpDb6pN2j6Y:JNkZQsQqoruIqRtGilpDb6fah
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

LegalCopyright: Copyright xa9 Blown Tingi Suq
InternalName: isdn
FileVersion: 9.0
CompanyName: Blown Tingi Suq
ProductName: isdn ketty toyo
ProductVersion: 9.0
FileDescription: isdn omnibuses uru
OriginalFilename: isdn.exe
Translation: 0x0409 0x04b0

Generik.LMQOKBN also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00520c241 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.4691
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.6267406
CylanceUnsafe
ZillyaTrojan.Cerber.Win32.351
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/generic.ali2000010
K7GWTrojan ( 00520c241 )
Cybereasonmalicious.41969b
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.LMQOKBN
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Zerber.fiwe
BitDefenderTrojan.GenericKD.6267406
NANO-AntivirusTrojan.Win32.Zerber.evpcwn
MicroWorld-eScanTrojan.GenericKD.6267406
TencentWin32.Trojan.Raasc.Auto
Ad-AwareTrojan.GenericKD.6267406
SophosMal/Generic-S
ComodoMalware@#2mf0l4gerbixu
BitDefenderThetaGen:NN.ZexaF.34608.oK0@aCNPpnki
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Flyagent.dm
FireEyeGeneric.mg.ad0ffe341969b8e7
EmsisoftTrojan.GenericKD.6267406 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Zerber.dni
AviraTR/Ransom.Cerber.gzsbj
MicrosoftRansom:Win32/Cerber.A
ArcabitTrojan.Generic.D5FA20E
AegisLabTrojan.Multi.Generic.4!c
ZoneAlarmTrojan-Ransom.Win32.Zerber.fiwe
GDataTrojan.GenericKD.6267406
AhnLab-V3Trojan/Win32.Zerber.C2378145
McAfeeArtemis!AD0FFE341969
MAXmalware (ai score=96)
VBA32BScope.Malware-Cryptor.Hlux
MalwarebytesMalware.Heuristic.1003
PandaTrj/GdSda.A
RisingRansom.Zerber!8.518C (CLOUD)
IkarusTrojan-Ransom.Zerber
FortinetW32/Generic.AP.5D822!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Cerber.HgIASOUA

How to remove Generik.LMQOKBN?

Generik.LMQOKBN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment